My network have about 8 thousand user, who work in multiple buildings. There is frequent employee turnover, which currently forces changes in the configuration of vlans on the switch ports. In addition, we have many device manufacturers in the organization such as Juniper, HP/Aruba, Cisco, TP-Link and Huawei.
I would like to use only a few vlans on a switch: VoIP, printers, internal network (intranet). Internet access only via VPN after authentication. I need to collect logs (IP <-> user) - applicable laws in my country. We have a radius server in the organization that I can use to authorize users.
Is it possible to build a VPN cluster based on open source software? - I need HA solutions.
I am also open to other suggestions to solve my problem.